Main Menu
Home
Bookmark
Contact Us



 
Win32.Idele.210 Viruses Information

Name: Win32.Idele.210
Category: Viruses
Description: Details
Win32.Idele.2108

It is a memory resident encrypted parasitic Win32 virus. While infecting the virus uses entry-point-obscuring technology (EPO) and does not modify file entry procedure address, but patches program code with JMP_Virus instructions. When program is run, and affected code branch gets control, the virus code is activated.
The virus then runs a background "thread" and stays as a process of infected application. As a result the virus is per-process memory resident, and it is active till the moment infected application is terminated.
Working in background the virus scans all disk drives, looks for PE EXE files on there, and infects them. The infection routine has a bug and in some cases infected files are corrupted by the virus.
The virus does not manifest itself in any way. It contains the text string:
Idele virus version 1.9DoxtorL./[T.I]/Dec.Y2K'



Top Viruses Visited Pages:
Invader. - 239 visits
not-a-virus:RiskWare.Tool.RegPatch. - 73 visits
Worm.P2P.Harex. - 66 visits
not-a-virus:RemoteAdmin.Win32.RAdmin.2 - 60 visits
Small.58. - 56 visits
Coito.64 - 54 visits
I-Worm.Mapson. - 48 visits
Win32.Hidra - 43 visits
Win16.Klon.1177 - 42 visits
Marine.500 - 35 visits

Random Viruses Pages:
ReedCat.92
Blinker.51
StealthBombe
Marky.47
Cherry.226
Macro.Word.T
CrazyPunk.50
BAT.Hot2Tro
Macro.Word.Templ
Tox.20


 


© 2006-2008 spyware32.com - Privacy Policy